VYPR

noptin

by Hizzle Co

CVEs (1)

  • CVE-2026-103482MedOct 10, 2026
    risk 0.35cvss 5.4epss —

    The Simple Newsletter Plugin – Noptin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'noptin_fields[<custom_field_merge_tag>] (e.g. first_name)' parameter in all versions up to, and including, 4.3.10 due to insufficient input sanitization and output…